Cisco Patches a Dozen Critical Vulnerabilities
Cisco has released security updates to address 35 vulnerabilities across its products, including over a dozen critical issues.
21 article(s) in our index mention this organisation.
Cisco has released security updates to address 35 vulnerabilities across its products, including over a dozen critical issues.
Threat actors are actively exploiting a critical vulnerability (CVE-2026-21589) in Atlassian’s self-hosted Data Center products, specifically Bitbucket, Confluence, Jira Software, Jira Service Management, Bamboo, Crowd,…
Atlassian has released patches for a directory traversal vulnerability (CVE-2026-21589) that allows attackers to read arbitrary files within their web applications. The vulnerability is triggered by a specific pattern us…
A critical security flaw in Atlassian Data Center products has been actively exploited within two hours of public disclosure. Atlassian has released patches and temporary mitigations, urging customers to prioritize patch…
Atlassian has released patches for a critical vulnerability (CVE-2026-21589, CVSS 9.3) affecting eight of its products – Bitbucket, Bamboo, Crowd, Confluence, Fisheye, Jira Service Management, and Jira.
A critical vulnerability (CVE-2026-21589) in eight Atlassian Data Center products allows unauthenticated attackers to read specific files in the web application root directory. The vulnerability is similar to a previousl…
Atlassian has issued a critical security advisory urging users to patch its datacenter products due to a vulnerability that could allow unauthenticated attackers to access specific files. This follows a series of decisio…
A vulnerability in Atlassian products allows an attacker to access arbitrary files, potentially leading to a data breach. Users are advised to consult the Atlassian security bulletin for patches.
The volume of disclosed vulnerabilities is increasing dramatically, but the number of those actually exploited in the wild remains relatively low. Traditional methods like relying solely on CVSS scores are insufficient b…
The US government has disrupted a Chinese hacking platform and botnet, QTFY, used by Chinese threat actors to target military and critical infrastructure systems in the United States. The disruption targeted QScan and QT…
This week saw a surge in high-impact cyberattacks and vulnerabilities, highlighting the increasing sophistication and speed of threat actors. AI is now being weaponized to craft exploit scripts targeting Siemens PLCs, wh…
A critical type confusion vulnerability in the isolated-vm Node.js library is being exploited to achieve remote code execution (RCE) on the host system. The vulnerability stems from a flawed data transfer mechanism withi…
Atlassian and Splunk have released patches to address over 250 vulnerabilities across their products, including numerous critical and high-severity flaws in third-party dependencies. These updates aim to mitigate risks s…
A new Linux botnet, dubbed Evooo1Bot, leveraging Mirai's code, is actively exploiting vulnerabilities in internet-facing devices to turn them into SOCKS5 proxies. The botnet utilizes a range of capabilities including enc…
Russian state-sponsored threat actors, linked to the Sandworm group, are using fake recruitment campaigns to trick IT professionals in Ukraine into installing malware. They impersonate IT companies like Sopra Steria Bulg…
OpenAI is suspending development of its upcoming AI model, Astra, due to concerns that it could autonomously develop zero-day exploits and execute complex cyberattacks. The company has implemented strict security control…
The US Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning to federal agencies to patch a critical vulnerability (CVE-2026-8037) in Progress LoadMaster and related products. This vulnerab…
A critical one-click vulnerability, dubbed RovoBlast, has been discovered in Atlassian’s Rovo AI assistant, allowing attackers to inject malicious prompts and exfiltrate sensitive data from various Atlassian products and…
Atlassian’s Rovo assistant has two vulnerabilities that could allow attackers to exfiltrate data. The first, a one-click link flaw, has been patched by Atlassian. The second, a content-borne prompt injection attack, allo…
Multiple vulnerabilities have been discovered in Atlassian products, including Confluence Data Center and Jira Service Management. These vulnerabilities allow for remote code execution, privilege escalation, denial of se…